ICYMI: 2026-10-07
Latest Headlines
Attackers Hijack .gh, .sl, and .as Registries to Obtain Certificates for Google Domains
Eight Malicious npm Packages Downloaded 40,767 Times Deliver Overlord RAT and Stealer
SonicWall Patches CVSS 10.0 Pre-Authentication SSRF Flaw in SMA1000 Appliances
Unpatched Critical LMCache Flaw Lets Unauthenticated Attackers Run Code Remotely
PoeLLM Malware Infects 3,400+ Servers to Expand Crypto Mining Botnet
The Sixth Voice of the CISO Data Shows Cyber Risk Has Moved Inside the Workflow
FBI Warns FortiBleed Remains Active After Amassing 86,644 Fortinet Device Credentials
Atlassian Data Center Flaw Draws Exploitation Attempts Within Two Hours of Public Details
What Is Agentic Pentesting? What It Proves, and Where It Stops.
Anthropic Expands Claude Access for Vetted Cyber Teams as Glasswing Finds 129,000 Flaws
100+ Compromised Websites Use Fake Cloudflare Checks to Deliver LunexStealer
The Pentagon Hopes to Speed Up ‘Kill Chain’ AI Buys With 5-Minute Videos
Georgia Power, Alabama Power Data Breach Hits 400,000 Accounts
Qilin Ransomware Suspect Arrested in Japan, Extradited to Germany
Hadrian Raises $40 Million to Expand Autonomous Offensive Security Platform
Advantest Discloses Data Breach Months After Ransomware Attack
Anthropic Introduces 3-Tier Cyber Verification Program for AI Access
Wikimedia Says Rogue OpenAI Agents Tried to Turn Its Tools Into Proxies
Atlassian Patches Critical Vulnerability Affecting 8 Products
FBI: Ongoing FortiBleed attacks lock out FortiGate VPN admins
Hackers hijack Google domains after breaching ccTLD registries
Microsoft Outlook to block MSIX attachments starting November
PoeLLM malware infects exposed AI servers in cryptomining attacks
Hackers exploit critical Atlassian flaw after public PoC release
SonicWall warns of max severity SSRF flaw in SMA1000 gateways
Musician sent to prison for $10 million streaming fraud using AI bots
Advantest confirms personal information stolen in ransomware attack
– MTZ